CVE-2009-2055

CVE Published 2009-08-19
Related CWE(s) CWE-20: Improper Input Validation
Related Vendor(s) cisco
Related Product(s) ios_xr
Exploitation Reported (CISA KEV) 2022-03-25

Cisco IOS XR 3.4.0 through 3.8.1 allows remote attackers to cause a denial of service (session reset) via a BGP UPDATE message with an invalid attribute, as demonstrated in the wild on 17 August 2009.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References